Skip to content

Does/will Hashicorp provide Snyk to have capabilities to perform version bumps for Terraform/AzureRM with automatic PRs? #37269

Open
@jammyjoe

Description

@jammyjoe

Terraform Version

1.12.2

Use Cases

Similar to dependabot which automatically creates pull requests to update dependencies, including Terraform providers and modules. Currently snyk has capabilities to perform IaC scans on terraform vulnerabilities but does not yet have capabilities to upgrade Terraform/azureRM providers similar to its capabilities to perform upgrades on outdates packages (npm, nugets etc...)

Attempted Solutions

I have researched both Hashicorp and Snyk documentation for this and see no reference of this feature existing or planning to be implemented.

Proposal

No response

References

No response

Metadata

Metadata

Assignees

No one assigned

    Labels

    enhancementnewnew issue not yet triagedwaiting-responseAn issue/pull request is waiting for a response from the community

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions